X11 Display Server Vulnerability in Thermo Fisher Ion Torrent OneTouch 2 Devices
CVE-2025-54304

9.8CRITICAL

Key Information:

Vendor
CVE Published:
4 December 2025

What is CVE-2025-54304?

A security flaw has been identified in Thermo Fisher Ion Torrent OneTouch 2 devices where an X11 display server is initiated upon powering on, exposing itself on all network interfaces via port 6000. This configuration allows unauthorized devices on the network to access the display server if the device does not retain its default IP address of 192.168.2.15 after connecting to a DHCP-enabled network. The exposed server can enable malicious actors to gain root privileges and execute code remotely through interactions with the matchbox-desktop interface. It is crucial to note that this vulnerability affects devices that are no longer supported by the vendor, increasing the urgency for affected users to secure their systems.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.